Cyber vigilante hunts down DeFi scammers running away with $25M rug pull

Published at: Jan. 30, 2022

In the world of digital finance, where the weapon of choice for a heist is a computer rather than a semi-automatic firearm, tracking down scams and frauds from across the world becomes a near-impossible feat for centralized police forces. 

However, in an interview with Cointelegraph, an anonymous cyber vigilante shares insights into how he went about tracking down a group of decentralized finance (DeFi) scammers responsible for the $25 million StableMagnet rug pull, coordinating with police authorities and eventually having the stolen money returned back to the investors.

The StableMagnet platform lured unwary investors under the pretext of high returns against stablecoin deposits. In a typical rug pull event, StableMagnet managed to run away with the $25 million that was invested by over 1000 users.

##StableMagnet #rugpull $22m and growing. Its SwapUtils library code is NOT verified and *DIFFERENT* from main Swap contract: https://t.co/Ls5XNA5UXf. @bscscan There is a need to verify the library code!

— PeckShield Inc. (@peckshield) June 23, 2021

Right before the rug pull, the cyber vigilante (anonymous for obvious reasons) examined the code to ensure the legitimacy of the project prior to investing himself. However, what he missed out on were a number of messages on Twitter alerting him on the possible exploits and vulnerabilities in the system. 

Taking things personally, the vigilante — an active ethical hacker — set out to track the scammers and bring justice to the investors. He told Cointelegraph:

“I just felt like this was the only opportunity in my life — to have a very meaningful impact in a situation where most people are not going to have the time and the gusto to do that kind of thing.”

Starting from tracking down a GitHub account to identifying all family members of the scammers through social media accounts, our vigilante’s investigation pinpointed a group of Chinese locals from Hong Kong.

Eventually, the anonymous vigilante tracked down the scammers' travel to a Chinatown in Manchester — a temporary move until the commotion died down:

“I didn't want them to go to jail. I don't like the centralized forces to come into the decentralized world as much as we possibly can.”

Taking the matter into his own hands, he booked a one-way flight ticket to Manchester while contacting local police authorities citing the narrow timeline before the scammers move to a different location. To the vigilante’s surprise, the Greater Manchester Police reacted swiftly and arrested a few of the scammers.

The police retrieved different pieces of a single USB device from the scammers, which contained roughly $9 million:

“Once that occurred, it was believable to the other project people (scammers) that I wasn't BSing about finding them and knowing where they were and being able to get them taught if

Following the arrests, other members of StableMagnet cooperated with the cyber vigilante and returned the majority of the loot. Ever since the development, his message has been heard loud and clear, “maybe it's not a good idea to scam, at least not on the Binance Smart Chain.”

Tags
Related Posts
‘No more rug pulls’: Project eliminates human involvement from token distributions
“A Polkadot project with a difference” says it is restoring trust and simplicity to complex token ecosystems and eliminating the centralized distribution models that can render the power of blockchain technology useless. Polkalokr offers a multi-chain token escrow platform that can be integrated into existing DeFi protocols, ensuring that network participants have full control over how tokens are distributed and treasuries are managed. The project’s goal is to remove human reliance and bring trust to token economies through governance-as-a-service — all while delivering security, scalability and a user-friendly experience. Explaining why Polkalokr is needed, the developers behind this initiative said: …
Technology / April 6, 2021
International Police Collaboration Leads to Arrest of Suspect in $11 Million IOTA Theft
Following international police collaboration, a 36-year-old individual suspected of the theft of over $11 million in IOTA, as well as fraud and money laundering, has been arrested on Jan. 24. Europol published a statement detailing the investigation on the day of the arrest. The suspect was reportedly arrested by United Kingdom’s South East Regional Organised Crime Unit, together with the Hessen State Police in Germany, the UK’s National Crime Agency and Europol, following a search warrant carried out in Oxford, U.K. The operation that lead to the man’s arrest — and the seizure of several of his electronic devices — …
Altcoin / Jan. 24, 2019
Security firms are making it more difficult for scammers to get away with DeFi project hacks
The rise of community-oriented blockchain security companies may be making it more difficult for alleged bad actors to get away without a trace. Early Wednesday, CertiK issued a community alert regarding Flurry Finance, where its smart contracts were allegedly breached by hackers, leading to $293,000 worth of funds being stolen. Shortly after the incident, CertiK published the wallet addresses of the alleged perpetrator, the address of the malicious token contract, and a PancakeSwap pair address allegedly involved in the attack, leading to a warning issued on BscScan. While the firm audited the project's smart contracts, it appears that the exploit …
Adoption / Feb. 23, 2022
Crypto hacks are set to hit all-time highs in 2022, analyst explains
Reducing the amount of hacking by improving cybersecurity should be considered a top priority for the crypto industry, said Kim Grauer, director of research of blockchain intelligence firm Chainalysis. As pointed out by the firm, this year could outpace 2021 in terms of crypto stolen through hacks. The vast majority of these exploits have been targeting the field of decentralized finance. “This can't go on in the industry because people are going to lose faith in investing in DeFi platforms”, Grauer said in an interview with Cointelegraph. Unlike centralized exchanges, which have improved their resiliency to crypto hacks, decentralized protocols …
Blockchain / Oct. 19, 2022
Ethereum white paper predicted DeFi but missed NFTs: Vitalik Buterin
Rounding up the last decade, Ethereum co-founder Vitalik Buterin revisited his predictions made over the years, showcasing a knack for being right about abstract ideas than on-production software development issues. Buterin started the Twitter thread by addressing his article dated Jul. 23, 2013 in which he highlighted Bitcoin's (BTC) key benefits — internationality and censorship resistance. Buterin foresaw Bitcoin’s potential in protecting the citizens’ buying power in countries such as Iran, Argentina, China and Africa. However, Buterin also noticed a rise in stablecoin adoption as he saw Argentinian businesses operating in Tether (USDT). He backed up his decade-old ideas around …
Adoption / Jan. 2, 2022